Privacy Policy
Last updated Jun 6, 2026 · Version 1.1
1. Introduction
Praxis ("we," "our," or "us") is committed to protecting your privacy. This Privacy Policy explains how we collect, use, disclose, and safeguard your information when you use our AI-powered learning platform.
By creating an account or using Praxis, you agree to the collection and use of information in accordance with this policy. You may withdraw your consent at any time via Settings → Privacy & Data → Withdraw consent.
2. Information We Collect
We collect information you provide directly to us:
- ▸Account information - name, email address, password (hashed with bcrypt), and profile details you choose to add.
- ▸Learning content - pathways, notes, todos, study sessions, AI conversations, and Kanban board data you create.
- ▸Usage data - pages visited, features used, and actions taken within the app (IP address stored as a hashed value).
- ▸Résumé and job data - content you upload or paste into ATS Studio.
- ▸Communication - messages you send through contact or bug-report forms.
3. How We Use Your Information
We use the information we collect to:
- ▸Provide, maintain, and improve the Praxis platform.
- ▸Personalise your learning experience and generate AI pathways.
- ▸Process study sessions and calculate insights.
- ▸Send transactional emails (account approval, pathway completion) via Resend.
- ▸Respond to your support requests.
- ▸Monitor for abuse, fraud, or violations of our Terms of Service.
4. Data Storage & Security
Your data is stored in a private PostgreSQL database hosted on Neon (a SOC 2-compliant provider). We use industry-standard encryption in transit (TLS 1.3) and at rest. Access to production databases is restricted to authorised personnel only.
We never sell your personal data to third parties. Your content is sent to AI model providers solely to generate responses you request — see Section 5 for details. We do not submit your content to any provider for the purpose of training their models, and our data processing agreements with these providers prohibit use of your data to train their models; however, each provider processes your content under their own terms of service (linked below).
5. Third-Party Subprocessors
We use the following third-party services to operate Praxis. Each acts as a data processor on our behalf:
- ▸Neon (neon.tech) — PostgreSQL database hosting. Data region: US East. SOC 2 Type II certified.
- ▸Vercel (vercel.com) — Application hosting, serverless edge functions, and CDN. Data region: US East (primary). SOC 2 Type II certified.
- ▸Google Gemini / Google Vertex AI (cloud.google.com) — Primary AI model for pathway generation, insights, and URL import. Your query content and study data are transmitted to Google's servers to generate responses. Google's data processing agreement prohibits using API inputs to train base models.
- ▸Nvidia (build.nvidia.com) — Secondary AI model inference used for weekly insights. Prompts and study snapshot data are transmitted to Nvidia's API.
- ▸Anthropic Claude (anthropic.com) — Optional AI provider available in the AI Coach feature. Used only when you select the Claude provider.
- ▸OpenAI (openai.com) — Optional AI provider available in the AI Coach feature. Used only when you select the OpenAI provider.
- ▸Firecrawl (firecrawl.dev) — Web scraping service used when you import a URL into a pathway. The URL you submit is sent to Firecrawl for content extraction.
- ▸Resend (resend.com) — Transactional email delivery (account approval, verification). Your email address is shared with Resend to deliver emails.
- ▸Google OAuth / GitHub OAuth — Used when you choose to sign in with Google or GitHub. Your public profile data (name, email, avatar) is received from the provider you select.
AI features are only activated after you give explicit consent. You can withdraw consent at any time via Settings → Privacy & Data → Withdraw consent, which will prevent further AI processing of your content.
6. Cookies
We use essential cookies to maintain your session. For details, see our Cookie Policy.
7. Your Rights
You have the right to:
- ▸Access the personal data we hold about you.
- ▸Request correction of inaccurate data.
- ▸Request deletion of your account and all associated data (via Settings → Privacy & Data → Delete account).
- ▸Export your data as a JSON file (via Settings → Privacy & Data → Export data).
- ▸Withdraw consent at any time (via Settings → Privacy & Data → Withdraw consent) — this does not affect lawfulness of prior processing.
- ▸Lodge a complaint with your local data protection authority if you believe your rights have been violated.
8. Data Retention
We retain your data for as long as your account is active. When you delete your account, all associated data is permanently removed from our databases within 30 days. Aggregated, anonymised analytics may be retained indefinitely.
AI conversation history is stored in your account to provide continuity across sessions. You can delete it by deleting your account or by using the data export followed by account deletion.
9. Children's Privacy
Praxis is not directed at children under 13. We do not knowingly collect personal information from children under 13. If you believe we have collected such information, please contact us immediately.
10. Changes to This Policy
We may update this Privacy Policy from time to time. We will notify you of any material changes via email or an in-app notice. Continued use of Praxis after the effective date constitutes acceptance of the updated policy.
11. Contact
For privacy-related questions, contact us at privacy@praxis.app or use our Contact Support page.
